PT-2019-11871 · Teclib · Glpi+1

Damien Picard

+1

·

Published

2019-03-29

·

Updated

2019-04-01

·

CVE-2019-10477

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions FusionInventory plugin versions prior to 1.4 for GLPI 9.3.x FusionInventory plugin versions prior to 1.1 for GLPI 9.4.x
Description The issue is related to the mishandling of sendXML actions by the FusionInventory plugin.
Recommendations For FusionInventory plugin versions prior to 1.4 for GLPI 9.3.x, update to version 1.4 or later. For FusionInventory plugin versions prior to 1.1 for GLPI 9.4.x, update to version 1.1 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-10477

Affected Products

Fusioninventory Plugin
Glpi